Toolkit 1 - AI Readiness Assessment
Evidence-informed scoring across governance, risk, data foundations, system visibility, and lifecycle management - designed for proportionate AI governance you can explain and defend in audit.
Designed to align with ISO/IEC 42001 intent and integrate cleanly with an ISO/IEC 27001-aligned ISMS approach.
ISO-literate by design - consistent scoring discipline and audit-friendly reporting.
Available now
🔒 Secure checkout via Lemon Squeezy ⚡ Instant delivery to your email 📄 7-day refund policy
Outputs may be shared with auditors, customers, regulators, and advisers for assurance.
By the end of today you will have
- A scored AI readiness baseline and maturity level - a defensible starting position you can explain to leadership
- A clear view of the top gaps and what to fix first - prioritised actions that move readiness fastest
- A board-ready view of risks, decisions, and next 90 days - decision asks and next steps in exec language
- A repeatable cadence for quarterly or annual refresh without rebuilding - reuse the same rubric and templates each cycle
- See example outputs: Download sanitised sample pack
Designed for
- CISO and Heads of Risk who need defensible assurance and board narrative
- GRC and InfoSec managers who need a practical, repeatable assessment system
- ISO-literate organisations establishing a baseline for responsible AI governance
- Teams under customer, audit, or reputational pressure to evidence control
- Organisations dealing with uneven adoption and shadow AI
What this replaces
Most organisations start AI governance with inconsistent checklists, ad hoc workshops, and scattered documents.
AI assurance expectations are rising across customers, regulators, and internal audit. This baseline gives you a defensible starting point.
Without a baseline, assurance conversations become opinion-led - and that is where avoidable risk and board discomfort shows up.
This toolkit replaces that with one structured assessment and reporting pack that gives you:
- consistent scoring discipline
- repeatable executive reporting
- clearer prioritisation than generic AI principles documents
- faster internal alignment without paying for consultancy discovery days
It is not a certification, audit, or legal assessment. It supports practical, audit-ready governance in day-to-day use, but does not guarantee certification outcomes.
Everything included - 11 files
This is a complete assessment and reporting pack - not a single spreadsheet. File formats follow the go-live delivery manifest.
-
README - Start Here PDF
Read this first for the file sequence, intended use and implementation path.
-
AI Readiness Assessment workbook XLSX
Core scoring workbook that calculates domain scores, overall score and maturity outputs.
-
How to Use the AI Readiness Assessment PDF
Step-by-step guidance for completion, scoring discipline and interpretation.
-
AI Readiness Maturity Model PDF
Maturity level definitions used by the assessment.
-
AI Readiness Roadmap Appendix A PDF
Reference roadmap appendix showing suggested next steps by maturity level.
-
AI Readiness Assessment Report Template DOCX
Editable template to document findings, recommendations and next actions.
-
Board and Exec Slide Deck Template PPTX
Executive-ready deck for risks, priorities and decision asks.
-
Bonus Quarterly Baseline Refresh Pack PDF
Cadence guidance, trigger events, minimum roles, inputs and expected outputs.
-
Quarterly AI Governance Readiness Update Template DOCX
Editable one-page quarterly update for changes, top risks, decisions and the next 90-day plan.
-
Licence and Use Notice PDF
Permitted use, restrictions and IP boundaries.
-
Refund Policy and IP Terms PDF
Refund policy, IP terms and usage boundaries.
Outputs and evidence you can generate
- Overall AI readiness score and maturity level
- Domain-level scores with clear strengths and gaps
- A prioritised improvement plan based on what moves readiness fastest
- A leadership-ready assessment report for assurance and audit conversations
- A Board and Exec deck that translates readiness into risk and decision asks
- A repeatable quarterly or annual readiness update using the same rubric
Sample output preview (sanitised)
See the format of the outputs without exposing the workbook.
Includes:
- 1-page executive summary (dummy data)
- Sample domain findings page (dummy gaps and strengths)
- Sample roadmap snippet (example priorities)
Licence summary (plain English)
- Licensed to a single legal entity (the purchasing organisation)
- Authorised users include employees and individual contractors acting on your behalf
- Outputs may be shared with auditors, customers, regulators, and advisers for assurance
- Toolkit files may not be shared, resold, or reused as a commercial method across other organisations
- Updates within the v1.x version family are included. v2.0 may be offered as a paid upgrade
- Access to the toolkit files is provided for the life of the product. We recommend retaining a local copy
When this is not for you
- You want generic AI awareness material or a simple checklist
- You already operate a fully embedded and audited AI governance framework
- You want automated technical tooling rather than a governance-led assessment system
Procurement justification
This purchase supports internal assessment of current AI governance readiness across governance maturity, policy coverage, accountability, operational controls and evidence preparedness.
The toolkit provides reusable scoring models, assessment templates, reporting materials and a prioritised implementation plan so that readiness findings can be presented consistently to management, assurance, security, risk and governance stakeholders.
The materials can be completed and refreshed internally, allowing the same assessment structure to be reused for future quarterly, annual or programme-stage reviews.
This is a one-off digital toolkit purchase. The supplier does not require access to our AI systems, prompts, models, datasets, customer data, source code, production environments, internal systems, risk registers or completed assessment evidence to fulfil this purchase.
The purchase is proportionate because it gives our organisation a defensible baseline and roadmap at a lower cost than commissioning a bespoke readiness workshop or creating the assessment method from scratch.
Designed for internal approval and procurement workflows.
Frequently asked questions
Is this aligned with ISO/IEC 42001?
It is designed to align with ISO/IEC 42001 intent and support proportionate AI governance. It is not a certification assessment.
Is this a certification, audit, or legal assessment?
No. This toolkit supports practical, audit-ready governance and evidence, but it does not provide legal advice and does not guarantee certification outcomes.
How long does the assessment take?
Typically 2 to 6 hours depending on scope and evidence availability. Refresh cycles are faster because you reuse the same rubric and only capture what changed.
Who should complete it?
For best results, complete it collaboratively. Typical participants include risk and governance leads, InfoSec, data or AI leads, operational owners, and internal assurance.
Can we share outputs with auditors or customers?
Yes. You may share outputs such as reports and decks for assurance purposes. The toolkit files themselves must not be shared.
Can we use a consultancy to help run the assessment?
Yes. Individual contractors, consultants, or professional advisers may support you as authorised users acting on your behalf. They must not retain copies beyond the engagement.
Is the licence per user or per organisation?
It is licensed to a single legal entity. Authorised users include employees and individual contractors acting on your behalf. See the Licence and Use Notice for full terms.
Do we need to buy it again for refresh cycles?
No. You reuse the same rubric and templates for refresh cycles.
What about updates?
Updates within the v1.x version family are included. A future major version (v2.0) may be offered as a paid upgrade.
How does payment work and who processes it?
Payment is processed securely by Lemon Squeezy, who act as merchant of record for AIBI Systems. This means your payment, VAT collection, and any post-sale compliance are handled directly by Lemon Squeezy - not by AIBI Systems. Once your payment is confirmed, your download link is delivered to your email immediately. All prices shown are inclusive of VAT.
Better value: AI Governance Starter bundle
Toolkit 1 sets the baseline. Pair it with Toolkit 5 to turn readiness findings into a unified AI and security risk method.
Or get Toolkit 1 through Toolkit 6 in the Complete System Bundle.
Toolkit 1 - AI Readiness Assessment
A scored, defensible baseline in 2-6 hours. Know where you stand and what to fix first.
Instant download. One-off purchase. Outputs may be shared with auditors, customers, regulators, and advisers for assurance.